Microsoft Blames the Messengers
Roger writes: "In an essay published on microsoft.com, Scott Culp, Manager of the Microsoft Security Response Center, calls on security experts to "end information anarchy" and stop releasing sample code that exploits security holes in Windows and other operating systems. "It's high time the security community stopped providing the blueprints for building these weapons," Culp writes in the essay. "And it's high time that computer users insisted that the security community live up to its obligation to protect them." See the story on Cnet News.com."
And by providing sample code we as administrators are shown exactly where the weakness is.
Everyone here knows that.. I'm just posting to be an asshole
-- 'The' Lord and Master Bitman On High, Master Of All
Attempt to make this drivel effective in the light of the terrorist events.
...Windows®, Linux, and Solaris®...
What's wrong with that picture? Linux *is also* a registered trademark, Microsoft. I suggest you recognize it as such.
Linus, kick some ass here.
Blech. Signatures.
I have a hard time believing any type of article like this when they will not put in the simple functionality of something like tcp/ip wrappers as a basic feature of their operating system. It is something simple, that provides a great deal of first line defense. No you have to get some half assed third party solution, like zone alarm.
Unix was born out of being on networks, and as a consequence they learned how to do stuff in a fairly secure fashion. This also goes to show what happens when people are too stupid to think for themselves and have the level of control over their systems that they need and want.
The microsoft arrogance of "We KNOW BEST, no go away kid your bothering me" is a major contributing factor to their serious operating system insecurities.
For example, I work in the IT industry and interact with a fair amount of people and have done an informal pole on how many people that actually run windows office programs that actually use macros, it is almost nil. So why in the hell do they ship that crap with that stuff wide open?
Those bastards need to shut the hell up and listen to what people are trying to tell them. Else, let them parish and provide us with hours entertainment developing ridicule.
Either give it away or get top dollar, but never sell yourself cheap.
I have met Scott Culp in person, at Black Hat in 2000. I have never met a person more brazenly corrupt in my life. He tried to bribe me into dirty tricks against Sun. Any prosecutors interested in pursuing this should contact me.